Originally posted by: her209
That's why I pipe the output into the input.
Originally posted by: TruePaige
Hmm..is this about XSS injections? I'll have to look closer.
If so it is easy to patch up if it is just the one hole.
Originally posted by: Spartan Niner
I posted a PSA in the Programming forum reminding people to sanitize their inputs...
Originally posted by: paulney
Originally posted by: Spartan Niner
I posted a PSA in the Programming forum reminding people to sanitize their inputs...
The clock is ticking.
Originally posted by: Spartan Niner
Originally posted by: paulney
Originally posted by: Spartan Niner
I posted a PSA in the Programming forum reminding people to sanitize their inputs...
The clock is ticking.
I am aware, so I will comply 23 hours and 59 minutes from T-start.
Mods, please forgive me for loving my alma mater.![]()
Originally posted by: RedSquirrel
Actually I wonder what sparked this to begin with. That exploit has been there forever. What's funny is I had a feeling once but never bothered to try. I had seen someone with a blank avatar and found it was weird so I checked the source to see it was really lack of image then checked the code for the profile and saw image names. Funny stuff.
I hope fusetalk is at least free software... I would hate to be a sucker paying for something with such simple easy to avoid flaws.
Originally posted by: Newbian
Originally posted by: Spartan Niner
Originally posted by: paulney
Originally posted by: Spartan Niner
I posted a PSA in the Programming forum reminding people to sanitize their inputs...
The clock is ticking.
I am aware, so I will comply 23 hours and 59 minutes from T-start.
Mods, please forgive me for loving my alma mater.![]()
I do notice that the page is continual loading with some of these custom avatars.![]()
Originally posted by: Spartan Niner
Originally posted by: RedSquirrel
Actually I wonder what sparked this to begin with. That exploit has been there forever. What's funny is I had a feeling once but never bothered to try. I had seen someone with a blank avatar and found it was weird so I checked the source to see it was really lack of image then checked the code for the profile and saw image names. Funny stuff.
I hope fusetalk is at least free software... I would hate to be a sucker paying for something with such simple easy to avoid flaws.
I'm afraid it's not...
FuseTalk Basic Edition (CF) ******* $1,298.00
FuseTalk Standard Edition (CF) **** $4,298.00
FuseTalk Enterprise Edition (CF) *** $6,898.00
FuseTalk Basic Edition (.NET) ****** $1,298.00
FuseTalk Standard Edition (.NET) *** $4,298.00
FuseTalk Enterprise Edition (.NET) ** $6,898.00
Originally posted by: adlep
.net and cf
For The Fail (FTF)
